Job Closed
This listing is no longer active.
Cloud Security Assurance
Location
Romania
Posted
178 days ago
Salary
0
Seniority
Senior
Job Description
Cloud Security Assurance
NTT DATA Romania
• Translate business and compliance requirements into practical, well-documented security architecture designs using recognized frameworks (e.g., ISO 27001, NIST, CIS) • Develop, document, and maintain consistent secure architectural patterns with an emphasis on cloud security (AWS, Azure, GCP) • Implement threat-informed design principles, integrating zero trust architectures and defensive depth strategies to address security gaps and enhance resilience • Maintain alignment between security policies, enterprise architecture principles, and client expectations • Conduct comprehensive risk assessments and threat modeling to evaluate existing or proposed architectures for vulnerabilities • Provide actionable mitigation strategies informed by a risk-based approach and evolving threat intelligence data • Participate in or support incident response initiatives, aiding in root cause analysis and the development of post-incident recommendations • Act as a trusted advisor to clients by engaging in technical discussions to inform strategic security decisions • Collaborate cross-functionally with development, operations, and engineering teams to validate that security controls are effectively implemented across the development lifecycle • Deliver technical insights in presentations, workshops, and reports tailored to both technical and executive audiences • Engage in audits, assessments, and reviews to ensure delivery meets strict alignment with industry frameworks • Provide clients with guidance on the implementation and enforcement of technical standards and cloud-specific security policies • Maintain up-to-date knowledge of regulations and frameworks such as NIS2 and DORA to address compliance risks and initiatives • Recommend improvements in security policies based on compliance evaluations and evolving risks • Contribute to the development of security roadmaps by delivering expert recommendations tailored to each client’s security objectives • Assess emerging technologies and threats, identifying opportunities to evolve architectural strategies through innovation and cutting-edge tools • Participate as an SME in pre-sales activities, assisting in defining technical collateral that supports project delivery
Job Requirements
- Bachelor’s degree in Information Security, Cybersecurity, or a relevant IT field (Master’s degree preferred)
- Minimum 5-10 years experience in security architecture, compliance, and cloud security roles, working with frameworks such as ISO 27001, NIS/NIS2, or NIST CSF
- Deep understanding of cloud security principles including management on AWS, Azure, and GCP platforms
- Familiarity with IAM, CASB, SIEM, and container security solutions
- CISSP or SABSA certifications required
- Cloud-specific certifications preferred (e.g., AWS Security Specialty, Azure Solutions Architect)
- Direct experience working in government, military, or intelligence organizations advantageous
- Must meet UK SC Clearance eligibility guidelines
- Proven ability to collaborate across diverse technical teams, influencing senior stakeholders in an advisory capacity
- Excellent communication and presentation skills for delivering complex technical concepts to non-specialist audiences
- Strong analytical thinking and the ability to rapidly assess risks in a given architecture framework
- Previous hands-on experience in developing security frameworks and implementing architectural changes at scale
- Ability to conduct cloud security posture assessments to identify misconfigurations early
- Excellent command of both spoken and written English.
Benefits
- New beginnings can be a challenge. We promise a smooth integration and a supportive mentor
- Pick your working style: choose from Remote, Hybrid or Office work opportunities
- Early bird or night owl? Our projects have different working hours to suit your needs
- Nobody is born an expert. Sharpen your tech skills with our sponsored certifications, trainings and top e-learning platforms
- We want you to stay healthy! Enjoy our Private Health Insurance – it’s custom-made for you
- A clear mind is a healthy mind. Attend individual coaching sessions or go one step further by joining our accredited Coaching School
- Make the most of our epic parties or themed events – they’re lovingly designed for our people and their families
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description As a Senior Security Engineer (d/f/m), your responsibilities will include: - Architecting our technical security operations while supporting the general growth and maturity of our information security program. - Driving the implementation of a SIEM, including log ingestion, tuning, and general log/evidence integration across a broad range of product and enterprise technologies. - Detecting, investigating, and resolving security events and incidents to continuously minimize impact and recovery time. - Leading the technical IR lifecycle (including our product) as the Incident Commander, conducting forensics and comprehensive post-incident analysis. - Creating and maintaining comprehensive incident response runbooks and automated response processes to continuously mature the IR program. - Assisting with the broader security posture through code reviews, implementing technical controls, and building checks into our CI/CD pipeline. Qualifications - 5+ years of experience as a product-facing SOC Analyst, Incident Responder, or Security Engineer (or equivalent) in a SaaS/E-commerce environment. - Proven ability to act as Incident Commander in the technical IR lifecycle—preferably for a SaaS/E-commerce product with high uptime and resilience requirements—leading forensics and driving SIEM implementation and tuning. - A proven track record of taking end-to-end ownership in a fast-paced environment, building processes from the ground up, and constantly adjusting to technological and organizational change. - Proficiency in any programming language for scripting, security tooling development, and automating GRC evidence collection. - A Bachelor's or Master’s degree in Computer Science, Information Technology, Cybersecurity, or a closely related technical field. Requirements - Proficiency in Terraform for securing infrastructure, combined with hands-on experience in integrating security testing. - Experience with preventing “rent-seeking” attacks like cybersquatting, sneaker bots, scalping, or grinch bots. - Experience in executing Red Team operations and/or penetration testing, with the ability to effectively collaborate with development teams to drive the remediation of software vulnerabilities. Benefits - We scale sustainably on a profitable, VC-backed foundation with true product-market fit. - Collaborate with over 160 dedicated professionals, including leaders from Google, Slack, and Salesforce. - We’re a diverse, merit-driven team spread across six global offices. - Consistently ranked among the fastest-growing scale-ups in Europe. - Work alongside some of tech’s brightest minds — from Forbes 30 Under 30 founders to Executive of the Year award winners.
Senior Security Engineer I, Network
AlkymiAlkymi is the leader in intelligent document processing and data workflow automation.
• Serve as the primary escalation resource for Cloudflare issue resolution • Engineer, optimize, and maintain Cloudflare security solutions • Manage and refine enterprise Palo Alto firewall policies • Conduct ongoing security assessments of network and application controls • Support the enterprise certificate lifecycle program • Participate in on-call rotations and help train and mentor engineers
Technical Program Manager – Security M&A
NetflixDescribed as the world's top internet television network, Netflix is a publicly-traded entertainment company offering video-on-demand and streaming media. As an
• Lead Mergers & Acquisitions (M&A) Security initiatives • Orchestrate the end-to-end security integration of acquired entities • Collaborate closely with cross-functional teams including Security and Privacy, Legal, N-Tech, Engineering and Business Units • Build security roadmaps for each M&A and deliver secure and seamless transitions • Ensure new and ongoing M&A projects achieve their desired integration targets on time • Partner with Security Engineering, Enterprise Technology, Product, and M&A teams to define integration blueprints • Build automation and playbooks to shorten integration timelines and improve consistency of post-acquisition security operations
Cross-Functional Coordinator – Cybersecurity
Everience RomaniaEverience, European leader in B2B IT support services, offers multilingual support for major international companies.
• Cross-functional coordination and management • Centralize security requirements for the various business IT departments • Drive responses with engineering teams: analyses, trade-offs, and action tracking • Serve as the single point of entry for your scope • Handle requests from the service catalog and ad-hoc requests outside the catalog • Support small projects and cross-functional security initiatives • Structure and track an average of one request per quarter • Contribute to cybersecurity monitoring and best practices • Raise awareness among stakeholders about security issues • Provide support on build-oriented topics with technical teams • Ensure consistency and overall quality of technical deliverables




